Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
20 results
EvilVM preview

EvilVM

GitHubjephthai/evilvm

Forth-based compiler deployed as position-independent x86_64 shellcode, providing a remote code execution agent with interactive REPL over TCP, HTTP,…

command-and-controlexploit-frameworkspayload-development+7
209
4 years ago
cve-2022-3218 preview

cve-2022-3218

GitHubmoisestapia/cve-2022-3218

Python exploit for CVE-2022-3218 that generates a reverse TCP payload via msfvenom and delivers it over HTTP to a target Windows host.

command-and-controlexploitationpayload-generation+3
9 months ago
sliver preview

sliver

GitHubbishopfox/sliver

Adversary Emulation Framework

adversarial-attackcommand-and-controldata-exfiltration+16
11.9k5 days ago
DFShell preview

DFShell

GitHubd3ext/dfshell

Python-based forward shell tool that creates a TTY-like interactive shell over HTTP using named pipes, enabling command execution on firewalled…

payload-generationpenetration-testingshellcode+1
1222 years ago
CVE-2025-55182-RCE-shell preview

CVE-2025-55182-RCE-shell

GitHubruoji6/cve-2025-55182-rce-shell

Burp Suite/antsword - Interactive shell (HTTP hijack + POST + AES-256-CBC/BASE64)

command-and-controlencryption-decryption-toolsexploitation+5
319 months ago
CVE-2024-36401 preview

CVE-2024-36401

GitHubkeelanbrady1011/cve-2024-36401

CVE-2024-36401 exploit with webshell-like functionality for limited environments, supporting self-signed TLS sessions and remote command execution…

exploitationpayload-generationremote-access-tool+2
2 months ago
CVE-2024-10793 preview

CVE-2024-10793

GitHubmahajian/cve-2024-10793

Proof-of-concept exploit for CVE-2024-10793 targeting WordPress wp-security-audit-log plugin. Demonstrates account takeover, privileged user…

exploitationpayload-developmentprivilege-escalation+3
21 year ago
CVE-2017-14980_syncbreeze_10.0.28_bof preview

CVE-2017-14980_syncbreeze_10.0.28_bof

GitHublipeozyy/cve-2017-14980_syncbreeze_10.0.28_bof

Proof-of-concept buffer overflow exploit for Sync Breeze Enterprise v10.0.28 (CVE-2017-14980). Sends crafted HTTP POST payload to overwrite EIP and…

binary-exploitationexploitationpayload-generation+4
21 year ago
Firefox-CVE-2016-9079 preview

Firefox-CVE-2016-9079

GitHubtau-hub/firefox-cve-2016-9079

Manual exploit for Firefox RCE CVE-2016-9079 with customizable shellcode, served via HTTP for remote code execution on vulnerable Windows systems.

exploitationpayload-developmentpenetration-testing+2
14 years ago
CVE-2025-48799- preview

CVE-2025-48799-

GitHubgmh5225/cve-2025-48799-

Proof-of-concept exploit for CVE-2025-48799, an Apache Tomcat remote code execution vulnerability. Demonstrates integer overflow exploitation via…

binary-exploitationeducationexploitation+5
1 year ago
CVE-2018-18912 preview

CVE-2018-18912

GitHubthemalwareguardian/cve-2018-18912

SEH-based buffer overflow in Easy File Sharing Web Server 7.2 demonstrating how an authenticated HTTP POST parameter can corrupt the exception…

binary-exploitationdebuggerseducation+6
16 months ago
CVE-2002-1120 preview

CVE-2002-1120

GitHubthemalwareguardian/cve-2002-1120

Classic stack-based buffer overflow in Savant Web Server 3.1 demonstrating early-2000s remote memory corruption through a crafted HTTP request.

binary-exploitationdebuggerseducation+8
16 months ago
CVE-2020-13768 preview

CVE-2020-13768

GitHubthemalwareguardian/cve-2020-13768

Stack-based buffer overflow in MiniShare 1.4.1 reachable through a single HTTP PUT request.

binary-exploitationdebuggerseducation+7
6 months ago
CVE-2024-23692 preview

CVE-2024-23692

GitHubmr-r00t11/cve-2024-23692

Rejetto HFS (HTTP File Server) is a simple web file server that facilitates file sharing over a network or the internet.

exploitationpayload-generationpenetration-testing+4
2 years ago
pinky preview

pinky

GitHubdavidtavarez/pinky

pinky - The PHP mini RAT (Remote Administration Tool)

command-and-controlencryption-decryption-toolspayload-generation+6
768 years ago
ZeroRAT preview

ZeroRAT

GitHub5alt/zerorat

ZeroRAT是一款windows上的一句话远控

command-and-controldata-exfiltrationexploitation+9
6310 years ago
CVE-2013-2028-Exploit preview

CVE-2013-2028-Exploit

GitHubm4drat/cve-2013-2028-exploit

CVE-2013-2028 python exploit

binary-exploitationexploitationpayload-development+4
196 years ago
CVE-2013-2028-Exploit preview

CVE-2013-2028-Exploit

GitHubvanivamshi/cve-2013-2028-exploit

Docker-based lab and Python exploit for CVE-2013-2028, an Nginx 1.3.9 chunked-parser integer overflow, covering canary recovery, mprotect, and…

binary-exploitationeducationexploitation+6
19 days ago
Previous12Next